{"id":3744,"date":"2026-07-17T05:30:00","date_gmt":"2026-07-17T05:30:00","guid":{"rendered":"https:\/\/naaia.ai\/?p=3744"},"modified":"2026-07-16T15:19:55","modified_gmt":"2026-07-16T15:19:55","slug":"prohibited-ai-practices-ai-act-compliance","status":"publish","type":"post","link":"https:\/\/naaia.ai\/en\/prohibited-ai-practices-ai-act-compliance\/","title":{"rendered":"Prohibited AI Practices: understanding the restrictions under the AI Act\u00a0"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The&nbsp;<strong>AI Act&nbsp;<\/strong>(Regulation (EU) 2024\/1689) is based on a risk-based classification of AI systems. Within this framework, certain practices are considered&nbsp;<strong>unacceptable<\/strong>&nbsp;and are therefore explicitly prohibited.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">These practices are defined in Article 5, which&nbsp;establishes&nbsp;a&nbsp;closed list of prohibited uses, based on their impact on fundamental rights, including decision-making autonomy, equal&nbsp;treatment&nbsp;and privacy.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Following the adoption of the Regulation, the European Commission proposed adjustments through the&nbsp;<strong>AI Omnibus<\/strong>. This proposal introduces&nbsp;<strong>new prohibited practices<\/strong>, particularly in relation to certain uses of generative AI, to reflect recent technological developments.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">I \u2013 Subliminal,\u00a0manipulative\u00a0or deceptive techniques\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI systems that use&nbsp;<strong>subliminal techniques<\/strong>,&nbsp;operating&nbsp;below a person\u2019s level of awareness, or&nbsp;<strong>deliberately manipulative or deceptive techniques<\/strong>, are prohibited where they have the effect of&nbsp;<strong>materially distorting a person\u2019s behaviour<\/strong>.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The key criterion is the impairment of the person\u2019s ability to make an informed decision, leading them to take a decision they would not otherwise have taken, with a risk of harm.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: an application that exploits cognitive biases to encourage users to make purchases or investments they would not have made under normal circumstances.<\/em>&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">II \u2013 Exploitation of vulnerabilities\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI systems that exploit&nbsp;<strong>vulnerabilities linked to age, disability or a specific social or economic situation<\/strong>&nbsp;are prohibited.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This applies where such vulnerabilities are used to materially distort the behaviour of a person or group and cause, or are likely to cause, harm.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: a system targeting financially vulnerable individuals with personalised offers encouraging them to take out unsuitable credit may fall within this category.\u00a0<\/em><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">III \u2013 Evaluation or classification of persons (\u201csocial scoring\u201d)\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI systems used for the&nbsp;<strong>evaluation or classification of natural persons<\/strong>&nbsp;based on social behaviour or personal characteristics are prohibited when they lead to specific adverse outcomes.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Two situations are covered. First, where such evaluations are used in contexts unrelated to those in which the data was originally generated or collected. Second, where they result in&nbsp;unjustified or disproportionate adverse treatment.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: a score assigned to an individual based on online behaviour and later used to deny access to a service unrelated to that behaviour.<\/em>&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">IV \u2013 Risk assessment for criminal offences<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">\u00a0The use of AI systems to&nbsp;<strong>assess or predict the risk&nbsp;<\/strong>of a<strong>&nbsp;natural person committing a criminal offence<\/strong>&nbsp;is prohibited where this assessment is based solely on profiling or personal characteristics.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A distinction is made where such systems are used to support a&nbsp;human assessment based on objective and verifiable facts&nbsp;directly linked&nbsp;to criminal activity.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: a tool assigning a criminal risk level based on personal traits or general behavioural data, without any direct link to a specific offence.<\/em>&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">V \u2013 Creation of facial recognition databases through untargeted scraping\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI systems that create or expand facial recognition databases through&nbsp;<strong>untargeted scraping of facial images<\/strong>&nbsp;from the internet or CCTV footage are prohibited.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This prohibition addresses the creation of large-scale databases without control over the origin of the data or the consent of the individuals concerned.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: a system trained on millions of images automatically collected from social media platforms without users\u2019 knowledge.<\/em>&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">VI \u2013 Emotion recognition in the workplace and education\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The use of AI systems for&nbsp;<strong>emotion recognition<\/strong>&nbsp;is prohibited in specific contexts, namely the&nbsp;<strong>workplace and educational institutions<\/strong>.&nbsp;Exceptions apply only where the use is justified for medical or safety purposes.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: a system analysing employees\u2019 facial expressions or voice to assess engagement or stress levels in a workplace setting.<\/em>&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">VII \u2013 Biometric categorisation based on sensitive characteristics<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">AI systems for&nbsp;<strong>biometric categorisation<\/strong>&nbsp;are prohibited where they are used to infer&nbsp;<strong>sensitive attributes<\/strong>, such as race, political opinions, religious&nbsp;beliefs&nbsp;or sexual orientation.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The&nbsp;objective&nbsp;is to prevent the use of biometric data to analyse or classify protected characteristics.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Example: a system claiming to infer political opinions from facial features or biometric data.<\/em>&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">VIII \u2013 Real-time remote biometric identification in publicly accessible spaces for law enforcement purposes\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The use of&nbsp;<strong>real-time remote biometric identification systems<\/strong>&nbsp;in&nbsp;<strong>publicly accessible spaces<\/strong>&nbsp;for&nbsp;<strong>law enforcement purposes<\/strong>&nbsp;is,&nbsp;generally, prohibited.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Limited exceptions apply, including the search for missing persons, the prevention of serious and imminent threats, or the identification of suspects in relation to serious criminal offences. These uses are subject to strict requirements, including&nbsp;<strong>necessity,&nbsp;proportionality&nbsp;and prior authorisation<\/strong>.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">IX \u2013 New prohibited practices introduced by the AI Omnibus\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The&nbsp;<strong>AI Omnibus<\/strong>&nbsp;complements the existing framework by introducing new prohibited uses, particularly in relation to generative AI.&nbsp;These include AI systems capable of generating or manipulating&nbsp;highly sensitive&nbsp;content, such as:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>child sexual abuse material, including fully or partially synthetic content\u00a0<\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li>images, videos or audio depicting an identifiable person\u2019s intimate parts or sexually explicit activities without their consent\u00a0<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">A concrete example is so-called \u201c<strong>nudification\u201d applications<\/strong>, which generate artificial intimate images from ordinary photographs.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">These practices are considered to constitute a serious infringement of human dignity,&nbsp;privacy&nbsp;and personal integrity.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">X \u2013 Sanctions for non-compliance<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Non-compliance with the prohibitions relating to AI practices triggers the highest level of penalties under the Regulation.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Fines can reach up to&nbsp;<strong>EUR 35 million or 7% of the total worldwide annual turnover<\/strong>, whichever is higher.&nbsp;This&nbsp;reflects&nbsp;the&nbsp;seriousness&nbsp;of the&nbsp;infringements.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Conclusion\u00a0<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The prohibited practices set out in the AI Act reflect a clear regulatory principle:&nbsp;<strong>certain uses of AI are not compatible with fundamental rights and cannot be allowed<\/strong>.&nbsp;Identifying&nbsp;these practices requires a structured assessment of the system\u2019s effects, particularly on decision-making autonomy, equal&nbsp;treatment&nbsp;and privacy.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For organisations, incorrect qualification may result in the deployment of a system that falls within a prohibited category, leading to immediate non-compliance and exposure to maximum sanctions. This makes it essential to&nbsp;identify, document and assess potential use cases at an early stage.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\ud83d\udc49\u00a0Need to\u00a0identify\u00a0prohibited practices within your AI systems and structure your compliance with the AI Act?\u00a0<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Discover\u00a0the\u00a0<a href=\"https:\/\/naaia.ai\/en\/\" target=\"_blank\" rel=\"noreferrer noopener\"><strong>Naaia platform<\/strong><\/a>, designed to help organisations\u00a0map AI use cases, assess\u00a0risks\u00a0and operationalise compliance over time, within a structured and traceable governance framework.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The&nbsp;AI Act&nbsp;(Regulation (EU) 2024\/1689) is based on a risk-based classification of AI systems. Within this framework, certain practices are considered&nbsp;unacceptable&nbsp;and are therefore explicitly prohibited.&nbsp; These practices are defined in Article&hellip; <a href=\"https:\/\/naaia.ai\/en\/prohibited-ai-practices-ai-act-compliance\/\">Lire la suite<\/a><\/p>\n","protected":false},"author":9,"featured_media":3747,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[46],"tags":[],"class_list":["post-3744","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ai-governance-blog"],"_links":{"self":[{"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/posts\/3744","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/comments?post=3744"}],"version-history":[{"count":2,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/posts\/3744\/revisions"}],"predecessor-version":[{"id":3749,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/posts\/3744\/revisions\/3749"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/media\/3747"}],"wp:attachment":[{"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/media?parent=3744"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/categories?post=3744"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/naaia.ai\/en\/wp-json\/wp\/v2\/tags?post=3744"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}